<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Updatable Objects in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203390#M10134</link>
    <description>&lt;P&gt;Im slightly confused, so just want to make sure Im getting this...are you saying src is natted and that part is fine, but also dst shows nat, but should NOT be?&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 17 Jan 2024 17:44:41 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-01-17T17:44:41Z</dc:date>
    <item>
      <title>Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203383#M10133</link>
      <description>&lt;P&gt;Hello team ;-),&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Writing today because I have an issue related to Updtabale object in Quantum Sparck appliance.&lt;/P&gt;&lt;P&gt;Model is 1550&lt;/P&gt;&lt;P&gt;Running R81 (996000575)&lt;/P&gt;&lt;P&gt;Remotely manage by MDM R81.10.&lt;/P&gt;&lt;P&gt;I could reduce policy in 2 Sections:&lt;/P&gt;&lt;P&gt;1. Allowing access to/from the global entreprise network without NAT or anything (appliance is connected behind SDWAN devices). (let's say 192.168.1.0/24 to/from 192.168.2.0/24)&lt;/P&gt;&lt;P&gt;2. Allowing access to UO: Zscaler Services and for sure NAT with external ip.&lt;/P&gt;&lt;P&gt;I had some complaints from some users that sometimes servers raise a "disconnected" status.&lt;/P&gt;&lt;P&gt;Looking at the logs in the Dashboard, What I see is unbelievable (not the real ip in the post...):&lt;/P&gt;&lt;P&gt;Src: 192.168.1.2 (this is an internal host)&lt;/P&gt;&lt;P&gt;Dst: 192.168.2.2 (this is an ip remotely connected with SDWAN) AND the UO:"Zscaler Services".&lt;/P&gt;&lt;P&gt;And so the src is natted and for sure connection is not possible. Dst should be only 192.168.2.2 and NO NAT.&lt;/P&gt;&lt;P&gt;I have checked the .C file for Zscaler and for sure 192.198.2.2 is not in it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any clue ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jan 2024 16:42:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203383#M10133</guid>
      <dc:creator>BikeMan</dc:creator>
      <dc:date>2024-01-17T16:42:51Z</dc:date>
    </item>
    <item>
      <title>Re: Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203390#M10134</link>
      <description>&lt;P&gt;Im slightly confused, so just want to make sure Im getting this...are you saying src is natted and that part is fine, but also dst shows nat, but should NOT be?&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jan 2024 17:44:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203390#M10134</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-01-17T17:44:41Z</dc:date>
    </item>
    <item>
      <title>Re: Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203449#M10135</link>
      <description>&lt;P&gt;I should reach 192.168.2.2 from 192.168.1.2. Policy is allowing this traffic. From / to these network no nat is required. It is part of the global entreprise network.&lt;/P&gt;&lt;P&gt;Sometimes, when I reach 192.168.2.2, in the Dst section of the logs I have: "192.168.2.2" AND "Zscaler services". As if 192.168.2.2 was part of "Zscaler Services" object while it is not. Traffic is using external interface and is NATted while it should use another routing interface without NAT.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rgds,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jan 2024 08:23:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203449#M10135</guid>
      <dc:creator>BikeMan</dc:creator>
      <dc:date>2024-01-18T08:23:19Z</dc:date>
    </item>
    <item>
      <title>Re: Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203477#M10137</link>
      <description>&lt;P&gt;I see what you mean, now I got it. Can you verify route is correct?&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jan 2024 12:46:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203477#M10137</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-01-18T12:46:19Z</dc:date>
    </item>
    <item>
      <title>Re: Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203847#M10158</link>
      <description>&lt;P&gt;Routing is fine. Sometimes it is working, sometimes not.&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jan 2024 14:41:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203847#M10158</guid>
      <dc:creator>BikeMan</dc:creator>
      <dc:date>2024-01-22T14:41:07Z</dc:date>
    </item>
    <item>
      <title>Re: Updatable Objects</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203848#M10159</link>
      <description>&lt;P&gt;Sounds like you may need remote with TAC to check this further, hard to say for sure why thats happenind, sorry.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jan 2024 14:43:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Updatable-Objects/m-p/203848#M10159</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-01-22T14:43:46Z</dc:date>
    </item>
  </channel>
</rss>

